Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:4478-1

Опубликовано: 18 дек. 2025
Источник: suse-cvrf

Описание

Security update for salt

This update for salt fixes the following issues:

  • Security issues fixed:

    • CVE-2025-62349: Added minimum_auth_version to enforce security (bsc#1254257)
    • CVE-2025-62348: Fixed Junos module yaml loader (bsc#1254256)
    • Backport security fixes for vendored tornado
      • BDSA-2024-3438
      • BDSA-2024-3439
      • BDSA-2024-9026
  • Other changes and bugs fixed:

    • Fixed TLS and x509 modules for OSes with older cryptography module
    • Fixed Salt for Python > 3.11 (bsc#1252285) (bsc#1252244)
      • Use external tornado on Python > 3.11
      • Make tls and x509 to use python-cryptography
      • Remove usage of spwd
    • Fixed payload signature verification on Tumbleweed (bsc#1251776)
    • Fixed broken symlink on migration to Leap 16.0 (bsc#1250755)
    • Fixed known_hosts error on gitfs (bsc#1250520) (bsc#1227207)
    • Improved SL Micro 6.2 detection with grains
    • Reverted requirement of M2Crypto >= 0.44.0 for SUSE Family distros
    • Set python-CherryPy as required for python-salt-testsuite

Список пакетов

SUSE Linux Enterprise Module for Systems Management 15 SP7
python311-salt-3006.0-150700.14.13.1
salt-3006.0-150700.14.13.1
salt-api-3006.0-150700.14.13.1
salt-bash-completion-3006.0-150700.14.13.1
salt-doc-3006.0-150700.14.13.1
salt-fish-completion-3006.0-150700.14.13.1
salt-master-3006.0-150700.14.13.1
salt-minion-3006.0-150700.14.13.1
salt-proxy-3006.0-150700.14.13.1
salt-ssh-3006.0-150700.14.13.1
salt-standalone-formulas-configuration-3006.0-150700.14.13.1
salt-syndic-3006.0-150700.14.13.1
salt-transactional-update-3006.0-150700.14.13.1
salt-zsh-completion-3006.0-150700.14.13.1

Описание

unknown


Затронутые продукты
SUSE Linux Enterprise Module for Systems Management 15 SP7:python311-salt-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-api-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-bash-completion-3006.0-150700.14.13.1

Ссылки

Описание

unknown


Затронутые продукты
SUSE Linux Enterprise Module for Systems Management 15 SP7:python311-salt-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-api-3006.0-150700.14.13.1
SUSE Linux Enterprise Module for Systems Management 15 SP7:salt-bash-completion-3006.0-150700.14.13.1

Ссылки